cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
364
Views
0
Helpful
1
Replies

PIX IDS "large Ping"

don.reeves
Level 1
Level 1

Is it possible to allow large ping replies through the PIX IDS-attack signiture without completely turning the IDS off?

1 Accepted Solution

Accepted Solutions

ywadhavk
Cisco Employee
Cisco Employee

Hi,

Use the "ip audit signature" command to disable this signature

ip audit signature :

Specify which messages to display, attach a global policy to a signature, and disable or exclude a signature from auditing.

I think the signature is 2151 : large ICMP traffic

Hope this helps,

yatin

View solution in original post

1 Reply 1

ywadhavk
Cisco Employee
Cisco Employee

Hi,

Use the "ip audit signature" command to disable this signature

ip audit signature :

Specify which messages to display, attach a global policy to a signature, and disable or exclude a signature from auditing.

I think the signature is 2151 : large ICMP traffic

Hope this helps,

yatin

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card